Pack CLI Issue w.r.t vulnerabilities. #222
Unanswered
kunaljoshi111
asked this question in
Q&A
Replies: 1 comment 1 reply
-
I need a little more information about your system. Under |
Beta Was this translation helpful? Give feedback.
1 reply
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
We are using Pack CLI for our builder images. However the final application image has a bunch of go binaries under the /cnb folder. These are time and again flagged by our infosec for go related vulnerabilities.
We want to be in a situation where the app built using pack that does NOT have unwanted go libraries? We want to have lean clean images that only contain what is needed to run the app. Example a NodeJS app should run on an image that only has the base OS and NodeJS. Other stuff such as python, go, perl etc are not required and should not be in that image. How can we achieve the same?
Beta Was this translation helpful? Give feedback.
All reactions